CVE-2022-0415: Remote Command Execution in uploading repository file in gogs/gogs
Remote Command Execution in uploading repository file in GitHub repository gogs/gogs prior to 0.12.6.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-0415?
CVE-2022-0415 is a vulnerability that allows remote command execution in uploading repository file in GitHub repository gogs/gogs prior to 0.12.6.
What is the severity of CVE-2022-0415?
The severity of CVE-2022-0415 is critical with a severity value of 8.8.
How does CVE-2022-0415 affect Gogs software?
CVE-2022-0415 affects Gogs software prior to version 0.12.6 and allows remote command execution in uploading repository files.
How can I fix CVE-2022-0415?
To fix CVE-2022-0415, update Gogs software to version 0.12.6 or later.
Where can I find more information about CVE-2022-0415?
You can find more information about CVE-2022-0415 at the following references: [Github Commit](https://github.com/gogs/gogs/commit/0fef3c9082269e9a4e817274942a5d7c50617284) and [Huntr Bounty](https://huntr.dev/bounties/b4928cfe-4110-462f-a180-6d5673797902).